Page 2 of 11 results (0.005 seconds)

CVSS: 7.2EPSS: 0%CPEs: 11EXPL: 1

Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable. • https://www.exploit-db.com/exploits/19474 http://www.securityfocus.com/bid/611 •

CVSS: 10.0EPSS: 0%CPEs: 2EXPL: 0

The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain sensitive information or bypass additional access restrictions. • ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-021.0.txt http://frontal2.mandriva.com/security/advisories?name=MDKSA-2002:025 http://www.securityfocus.com/bid/1446 https://exchange.xforce.ibmcloud.com/vulnerabilities/4856 •

CVSS: 4.6EPSS: 0%CPEs: 2EXPL: 0

The KDE klock program allows local users to unlock a session using malformed input. • http://www.securityfocus.com/bid/489 https://github.com/KDE/kde1-kdebase/commit/04906bd5de2f220bf100b605dad37b4a1d9a91a6 •

CVSS: 2.1EPSS: 0%CPEs: 4EXPL: 0

A vulnerability in Caldera Open Administration System (COAS) allows the /etc/shadow password file to be made world-readable. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0712 •

CVSS: 7.2EPSS: 0%CPEs: 8EXPL: 0

Buffer overflow in run-time linkers (1) ld.so or (2) ld-linux.so for Linux systems allows local users to gain privileges by calling a setuid program with a long program name (argv[0]) and forcing ld.so/ld-linux.so to report an error. • http://marc.info/?l=bugtraq&m=87602661419318&w=2 http://marc.info/?l=bugtraq&m=87602661419351&w=2 http://marc.info/?l=bugtraq&m=88661732807795&w=2 •